Solved! Use LUA5.1.DLL (Trojan Agent) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

LUA5.1.DLL – Trojan Agent removal

FileMD5Virus Alias
LUA5.1.DLL 56e2cb184a24aedb473880462197cac4 Trojan Agent

LUA5.1.DLL size: 325960 bytes
LUA5.1.DLL hash: 56E2CB184A24AEDB473880462197CAC4

Created files:

%Program Files%\Dealz\dll.exe
%Program Files%\Dealz\lua5.1.dll
%Program Files%\Dealz\Uninstall\xtypzt7890
%WinDir%\plofgye
%WinDir%\soxe
%SysDir%\GroupPolicy\Machine\comment_machine.cmtx
%SysDir%\GroupPolicy\Machine\Registry.pol
%SysDir%\GroupPolicy\User\comment_user.cmtx
%SysDir%\GroupPolicy\User\Registry.pol
%Temp%\chrome.admx
%Temp%\chrome_gb.adml
%Temp%\chrome_us.adml
%Temp%\comment_machine.cmtx
%Temp%\comment_user.cmtx
%Temp%\inject_executer
%Temp%\jid1-igS4vTG6oupqCA@jetpack.xpi
%Temp%\jid1-sXWNoXABeFqKYg@jetpack.xpi
%Temp%\Registry_machine.pol
%Temp%\Registry_user.pol
%Temp%\runbat.exe
%Temp%\sch_32.exe
%Temp%\sch_64.exe
%Temp%\WinCert.cer
%Temp%\winpacket.pac
%Temp%\winpacket_alt.pac
%Temp%\WinUpdate
%Temp%\_ir_sf_temp_0\lua5.1.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\SearchList: browserupdatecheck.in

Detected by UnHackMe:

LUA5.1.DLL
Default location: %PROGRAM FILES%\DEALZ\LUA5.1.DLL

Dropper information:
MD5: f265652022ae20ab6130cc48d89f76d6
File size: 2274480 bytes

Leave a Reply